Doesn't every TPM use a unique key to prevent this exact thing happening? If you do rip the key off of it and publish it, they'd just blacklist that particular key as "compromised".
Just wondering just how expensive it really is to rip the key out (or to have access to the tools to do it)